MANTECH A.I CyberSecurity Scoring
MANTECH
Company Information
Website:https://www.MANTECH.com/
Employees number:10,501
Number of followers:181,462
NAICS:541516
Industry Type:IT System Data Services
Homepage:MANTECH.com
MANTECH Risk Score (AI oriented)
Between 750 and 799
MANTECHIT System Data Services
Updated:
07/03/2026
07/03/2026
774/1000
Fair
Baa
MANTECH Global Score (TPRM)
xxxx
MANTECHIT System Data Services
Score locked

MANTECHFair
Current Score
774Baa (FAIR)
01000
1 incidents
-1 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
AUGUST 2026
774
JULY 2026
774
Vulnerability
13 Jul 2026 • MANTECH
Cisco: CISA Warns 18-Year-Old Cisco IOS Vulnerability Exploited for Arbitrary Command Execution
18-Year-Old Cisco IOS Vulnerability Actively Exploited, Added to CISA’s KEV Catalog
773
CRITICAL-1
CIS1784025731
18-Year-Old Cisco IOS Vulnerability Actively Exploited, Added to CISA’s KEV Catalog
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added CVE-2008-4128, an 18-year-old Cross-Site Request Forgery (CSRF) vulnerability in Cisco IOS 12.4, to its Known Exploited Vulnerabilities (KEV) catalog after confirming active exploitation. The flaw, first disclosed in 2008, affects the HTTP management interface of legacy Cisco devices, allowing attackers to execute arbitrary commands with privilege-level 15 access effectively granting full administrative control.
The vulnerability can be exploited through two attack vectors:
- A crafted "show privilege" command sent to the /level/15/exec/- URI
- A malicious "alias exec" command injected via the /level/15/exec/-/configure/http URI
Since the flaw abuses the trust placed in an authenticated administrator’s browser session, attackers can trick logged-in users into submitting forged requests without needing direct credential theft.
CISA’s inclusion of CVE-2008-4128 in the KEV catalog on July 13, 2026, with a remediation deadline of July 16, 2026, highlights the ongoing risk posed by unpatched legacy infrastructure. Federal agencies and aligned organizations must act within a three-day window to mitigate exposure, per Binding Operational Directive (BOD) 26-04.
The resurgence of this vulnerability underscores a persistent challenge: outdated Cisco IOS devices, often deemed "stable" or business-critical, are frequently deprioritized in patch cycles, making them prime targets for attackers scanning for exposed HTTP management interfaces. While it remains unclear whether the flaw has been used in ransomware campaigns, organizations are advised to disable the HTTP server feature if unused, restrict access via ACLs, enforce HTTPS with strong authentication, and audit configurations for signs of exploitation.
INCIDENT DETAILS -
TYPE
IMPACT
REFERENCES
JUNE 2026
774
MAY 2026
774
APRIL 2026
774
MARCH 2026
774
FEBRUARY 2026
774
JANUARY 2026
774
DECEMBER 2025
774
NOVEMBER 2025
774
OCTOBER 2025
774
SEPTEMBER 2025
774
Frequently Asked Questions
?
What is the current A.I Rankiteo Cyber Score for MANTECH ??
What was MANTECH's A.I Rankiteo Cyber Score in July 2026 ??
What was MANTECH's A.I Rankiteo Cyber Score in June 2026 ??
What was MANTECH's A.I Rankiteo Cyber Score in May 2026 ??
What was MANTECH's A.I Rankiteo Cyber Score in April 2026 ??
What was MANTECH's A.I Rankiteo Cyber Score in March 2026 ??
What was MANTECH's A.I Rankiteo Cyber Score in February 2026 ??
What was MANTECH's A.I Rankiteo Cyber Score in January 2026 ??
What was MANTECH's A.I Rankiteo Cyber Score in December 2025 ??
What was MANTECH's A.I Rankiteo Cyber Score in November 2025 ??
What was MANTECH's A.I Rankiteo Cyber Score in October 2025 ??
What was MANTECH's A.I Rankiteo Cyber Score in September 2025 ??
What is the average per-incident point impact on MANTECH's A.I Rankiteo Cyber Score over the past 12 months ??
Where can I access detailed records of all cyber incidents associated with MANTECH ??
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ??
Where can I view MANTECH's profile page on Rankiteo ??
How accurate is the A.I Rankiteo Risk Scoring methodology ?